DSD awarded for cheaper, better security policies than US

Powered by SC Magazine
 

Defence secretary called out.

The Defence Signals Directorate (DSD) has won a security award for setting security standards that are cheaper and more effective than those in place at US Government agencies.

It won the US National Cybersecurity Innovation Award from the SANS Institute for “ground-breaking innovation” in naming four basic security controls and 35 others that help mitigate breaches.

 

The four controls – application updating and patching; operating system patching; whitelisting, and strict account control – were derived from research into security intrusions in military and civilian IT systems.

While the controls were simple, the SANS Institute claimed they were more effective and cost a “tiny fraction” of those deployed in US cyber security programs.

Innovation by the Australian agencies "changes the game”, the institute said.

Vulnerability researchers Steve Mcleod and Chris Brookes led the DSD team initiative. They published a further 35 controls that would assist in breach mitigation.

The award for effective security management particularly acknowledged Defence secretary Dr Ian Watt for “extraordinary leadership” in advocating that all cabinet agencies implement the four “sweet spot” controls.

Low-to-medium intrusions were “no longer a significant problem” in agencies that had implemented the four controls.

The DSD beat 50 nominated and 14 shortlisted organisations.

The award recognises processes or technologies that have not previously been deployed effectively, significantly reduce IT security risk, could be scaled quickly and should be adopted widely.

Copyright © SC Magazine, Australia


DSD awarded for cheaper, better security policies than US
 
 
 
Top Stories
The True Cost of BYOD - 2014 survey
Twelve months on from our first study, is BYOD a better proposition?
 
Photos: Unboxing the Magnus supercomputer
Pawsey's biggest beast slots into place.
 
ANZ looks to life beyond the transaction
If digital disruptors think an online payments startup could rock the big four, they’ve missed the point of why people use banks, says Patrick Maes.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
What is delaying adoption of public cloud in your organisation?







   |   View results
Lock-in concerns
  29%
 
Application integration concerns
  3%
 
Security and compliance concerns
  28%
 
Unreliable network infrastructure
  9%
 
Data sovereignty concerns
  22%
 
Lack of stakeholder support
  3%
 
Protecting on-premise IT jobs
  4%
 
Difficulty transitioning CapEx budget into OpEx
  3%
TOTAL VOTES: 1079

Vote